Senior Information Assurance Engineer
Role details
Job location
Tech stack
Job description
We are seeking an experienced Senior Information Assurance Engineer to join our growing Cyber Security team, supporting customer programmes across the Defence, Intelligence, Logistics, and National Security sectors within the UK.
This is an opportunity to lead practical, proportionate security assurance across complex UK programmes, helping customers manage risk while enabling successful delivery.
As a Senior Information Assurance Engineer, you will shape assurance strategy, support risk-based decision making, and work closely with customers, suppliers, and multidisciplinary delivery teams to embed security throughout the project lifecycle.
You will also drive the continued maturity of our security assurance capability, including NIST-aligned risk assessment methods, assurance processes, tooling, and reporting that improve consistency and visibility across programmes.
You will be part of a wider UK cyber community, working alongside Information Assurance, Security Architecture, Security Engineering, and Security Monitoring specialists to deliver security by design and continually raise cyber security standards.
Eligibility, Clearance & Location Requirements
- DV clearance required.
- Applicants must be sole British nationals due to customer and programme restrictions.
- Huntingdon, Cambridgeshire - minimum 4 days per week onsite (alternative arrangements by exception and subject to agreement with the Cyber Security Lead).
- Willingness to undertake occasional travel across the UK, including London and customer sites, as required., * Lead Information Assurance across the system lifecycle, ensuring security requirements are understood, implemented, assured, and maintained.
- Conduct risk assessments and assurance activities using recognised frameworks including NIST RMF, NIST CSF, and ISO 27001.
- Develop, review, and maintain assurance artefacts including SyOPs, RMADs, Security Impact Assessments, Security Management Plans, risk assessments, and governance documentation.
- Drive maturity of assurance processes, tooling, reporting, and governance across multiple programmes.
- Lead incident response capability development, including response plans, playbooks, testing, exercising, and Tabletop Exercises (TTXs).
- Manage vulnerability, risk, audit, control assessment, and compliance activities, ensuring findings are prioritised and driven through to resolution.
- Engage customers, suppliers, and senior stakeholders with clear risk advice, assurance reporting, and evidence-based recommendations.
- Provide leadership, mentoring, and guidance to assurance practitioners and wider project teams.
Requirements
- Proven experience delivering Information Assurance, risk management, and security assurance within Defence, Government, Intelligence, or other highly regulated environments.
- Strong understanding of NIST RMF/CSF, ISO 27001, and Government security frameworks, with experience developing assurance artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence.
- Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms.
- Ability to brief and influence senior stakeholders, mentor assurance practitioners, prioritise competing demands, and drive continuous improvement across security processes, methodologies, and tooling., * Experience working within MOD, Home Office, National Security, or other Government environments.
- Experience leading the implementation of security, assurance, or risk management changes across complex operational or project environments.
- Relevant security qualifications (e.g. CISM, CISSP, CRISC) or equivalent demonstrable experience.
Technology Skills
- Strong understanding of enterprise security architectures and controls, including network security, secure boundaries, endpoint protection, IDS/IPS, SIEM, identity and access management, PKI, LDAP, Active Directory, SAML, encryption, and key management.
- Experience interpreting outputs from vulnerability assessments, penetration testing, IT Health Checks (ITHCs), and security monitoring activities to support remediation planning and risk-based prioritisation.
- Ability to assess technical security controls and architectures, providing assurance that solutions meet security, compliance, and business requirements.
Communication and Soft Skills
- Excellent written and verbal communication skills, with the ability to adapt messaging for technical teams, customers, senior leaders, and executive stakeholders.
- Strong stakeholder engagement, influencing, and relationship management skills, with the confidence to provide clear risk-based advice and challenge where required.
- Proven leadership, prioritisation, and organisational skills, with the ability to lead initiatives, manage competing demands, mentor others, and support informed decision-making.
- Strong commercial awareness, with an understanding of programme delivery, customer priorities, business objectives, and effective security risk management.
Benefits & conditions
Are you ready to make an impact? Begin your journey of a flourishing and meaningful career, share your CV with us today!
What we do for you:
At Leidos we are PASSIONATE about customer success, UNITED as a team and INSPIRED to make a difference. We offer meaningful and engaging careers, a collaborative culture, and support for your career goals, all while nurturing a healthy work-life balance.
We provide an employment package that attracts, develops and retains only the best in talent. Our reward scheme includes:
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave (including public and privilege holidays)
Access to Flexible benefits (including life assurance, health schemes, gym memberships, annual buy and sell holidays and a cycle to work scheme)
Flexi-TIme
Commitment to Diversity, Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .